QID 591257

Date Published: 2023-01-06

QID 591257: Siemens SCALANCE SC-600 Family Multiple Vulnerabilities (ICSA-22-349-18, SSA-333517)

AFFECTED PRODUCTS
SCALANCE SC622-2C (6GK5622-2GS00-2AC2): Versions prior to 3.0
SCALANCE SC626-2C (6GK5626-2GS00-2AC2): Versions prior to 3.0
SCALANCE SC632-2C (6GK5632-2GS00-2AC2): Versions prior to 3.0
SCALANCE SC636-2C (6GK5636-2GS00-2AC2): Versions prior to 3.0
SCALANCE SC642-2C (6GK5642-2GS00-2AC2): Versions prior to 3.0
SCALANCE SC646-2C (6GK5646-2GS00-2AC2): Versions prior to 3.0

QID Detection Logic:
This QID checks for the Vulnerable version of Siemens SCALANCE SC-600 Family using passive scanning

Successful exploitation of this vulnerability could allow a denial-of-service condition, corrupt memory, or potentially execute custom code.

  • CVSS V3 rated as High - 7.8 severity.
  • CVSS V2 rated as High - 6.8 severity.
  • Solution

    Customers are advised to refer to CERT MITIGATIONS section ICSA-22-349-18 or Siemens MITIGATIONS section SSA-333517 for affected packages and patching details.

    Vendor References

    CVEs related to QID 591257

    Software Advisories
    Advisory ID Software Component Link
    ICSA-22-349-18 URL Logo www.cisa.gov/uscert/ics/advisories/icsa-22-349-18
    SSA-333517 URL Logo cert-portal.siemens.com/productcert/html/ssa-333517.html